Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39255
HistoryFeb 14, 2023 - 7:21 a.m.

Regular Expression Denial Of Service (ReDoS)

2023-02-1407:21:09
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10
vulnerability
redos
regular expression denial of service
sideway/formula
index.js
polynomial execution time
application crash

0.001 Low

EPSS

Percentile

34.6%

sideway/formula is vulnerable to Regular Expression Denial Of Service (ReDoS). The vulnerability exists in index.js due to regular expression complexity which allows attacker to provide crafted strings to the formula’s parser that might lead to polynomial execution time causing an application crash.

0.001 Low

EPSS

Percentile

34.6%